p0f is a versatile passive OS and application fingerprinter, and a tool for detecting NAT/connection sharing. It is useful for penetration testing, routine network monitoring, and forensics, and to aid abuse detection tools such as IDSes, spam filters, or honeypots.

2004-07-11 00:11

This is a new stable release. More signatures were
added. The documentation was updated. Timestamp
reporting was enhanced. Various other bugfixes
were made. A PDA port was created.
2003-11-03 16:01

This is a new stable release. Masquerade detection
was improved. A new fuzzy TTL matching option was
added. More signatures are included. A new Windows
port was made. The Solaris port was fixed. New
functionality and better RST fingerprinting
support were implemented.
2003-10-11 02:25

Masquerade detection now also checks for timestamp behavior. Fuzzy TTL matching is available. An uptime indicator has been added to query structures. There are more signatures.
2003-10-07 22:23

Masquerade detection is now available on Windows. The Windows binaries and port have been updated. An endian glitch on Solaris has been fixed. A sendsyn utility has been added. The -r mode has been improved. This release has payload dump functionality, auto WSS wildcarding, and better documentation.
2003-09-28 20:55

Many new RST fingerprints and better documentation for this fingerprinting mode, a sendack2 utility, and many minor fixes.
